Treasury’s Tech Tangle: Chinese Hackers and the Great Cybersecurity Fumble

The United States Treasury Department was hit by a major cybersecurity incident linked to Chinese threat actors. They accessed computers and unclassified documents through a compromised key from BeyondTrust, a third-party service provider. The Treasury Department is working with the FBI and CISA to address the incident and secure their systems.

Pro Dashboard

Hot Take:

Well, it seems the U.S. Treasury Department just got an unexpected audit by our ‘friends’ in China. Who knew cybersecurity breaches could be so taxing?

Key Points:

  • The U.S. Treasury Department experienced a “major cybersecurity incident” involving suspected Chinese hackers.
  • Attackers gained access through a compromised key from BeyondTrust, allowing them to remotely access some Treasury computers and documents.
  • The Treasury is collaborating with CISA and the FBI, suspecting a Chinese state-sponsored APT group.
  • BeyondTrust has identified security vulnerabilities in its products, with one already being actively exploited.
  • The incident coincides with other attacks on U.S. telecom providers by a different Chinese threat group, Salt Typhoon.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here
The Nimble Nerd
Confessional Booth of Our Digital Sins

Okay, deep breath, let's get this over with. In the grand act of digital self-sabotage, we've littered this site with cookies. Yep, we did that. Why? So your highness can have a 'premium' experience or whatever. These traitorous cookies hide in your browser, eagerly waiting to welcome you back like a guilty dog that's just chewed your favorite shoe. And, if that's not enough, they also tattle on which parts of our sad little corner of the web you obsess over. Feels dirty, doesn't it?